How to remove Setup-Ro.exe
- File Details
- Overview
- Analysis
Setup-Ro.exe
The module Setup-Ro.exe has been detected as Ransom.Somhoveran
File Details
| Product Name: |
|
| Company Name: |
|
| MD5: |
b634e46e3ed42aef63135b218446025e |
| Size: |
499 KB |
| First Published: |
2018-10-03 05:07:57 (7 years ago) |
| Latest Published: |
2024-07-22 23:01:08 (a year ago) |
| Status: |
Ransom.Somhoveran (on last analysis) |
|
| Analysis Date: |
2024-07-22 23:01:08 (a year ago) |
| %sysdrive%\เกมส์ |
| %sysdrive% |
| %sysdrive% |
| %sysdrive% |
| %sysdrive% |
| %sysdrive% |
| %sysdrive% |
| %sysdrive% |
| %sysdrive% |
| %sysdrive%\จากdesktop\folderทั้งหมดบนdestop |
| Windows 10 |
69.2% |
|
| Windows 7 |
30.8% |
|
Analysis
| Subsystem: |
Windows GUI |
| PE Type: |
pe |
| OS Bitness: |
32 |
| Image Base: |
0x00400000 |
| Entry Address: |
0x000184ce |
| Name |
Size of data |
MD5 |
| .text |
139264 |
d5f122a45d5919081d4c665a042d3b6b |
| .rdata |
11264 |
e2b60bbae79cb37d9f322cc40673579b |
| .data |
16384 |
3af06c51e17aaaa265efe431e92ba1b6 |
| .idata |
4608 |
488f52e88543a79897f4d88c8d0b9be8 |
| .shared |
1536 |
53e979547d8c2ea86560ac45de08ae25 |
| .rsrc |
337408 |
6e8ca439d739a11988275f0d305116f1 |